I've pushed out some module updates to the cms in the last couple of weeks:
REPORTS
USERS>MEMBERS
MARKETING>MEMBER NEWS
INTRUSION ALERT!
There was an intrusion attack by a hacker last weekend. One of our site's admin areas was hacked (login guessed) and they added their own attack script (DDOS simulator) on the Join page template file. The template editor is the only place PHP is allowed and they found it.
The network security system scans every site every few minutes for hacker scripts, template updates, and intrusions. These hackers were found and kicked out within about 20 minutes. They were from Indonesia, but using a VPN in the UK.
The site owner was notified and the admin password was updated. If you create admin users, please make the password hard to guess (abc123 is a bad password!). If hackers get into your admin, they can really mess things up, including taking down your site or deleting your content. There are hourly data backups, but content files are deleted permanently.
I hope your summer is going well so far. Its been pretty quiet around here, so I have just been updating the cms and doing customs work. I have a small list of other cms updates I want to get done before it gets busy and crazy in the fall and winter.
If you have any suggestions, or see any problems, please let me know!
Thanks! - Master Ryan